  Woody79_00
join:2004-07-08 united state
| (PoC) code for Google Toolbar Phishing/Malicious Code
The Google toolbar has found yet another use: as a possible malware vector. A researcher has released a proof-of-concept (PoC) code, which demonstrates how an attacker may install malicious software or conduct phishing attacks by prompting the user to install a new Google toolbar button.
Affected Google toolbar versions are as follows:
Google Toolbar 5 beta for Internet Explorer Google Toolbar 4 for Internet Explorer Google Toolbar 4 for Firefox (partially) The code makes use of a specially crafted link that refers to the buttons XML file, which when clicked displays a dialog box summarizing the details of the button to be installed. This dialog box also displays a URL of where the button is to be downloaded. Through manipulation, however, a malicious author could make it appear that the said URL is non-malicious by adding special redirector strings.
»blog.trendmicro.com/google-toolb···buttons/ |